Cobalt Jackal is a fictional synthetic threat actor created for cyber threat intelligence exercises, testing, training, and documentation within the Synthetic Exercise World Format. It appears as TA-705 Cobalt Jackal and TA-715 Cobalt Jackal in a deliberately non-attributable reference environment built to support realistic CTI workflows without using real adversaries, victims, or geopolitical entities. The actor is associated with the fictional country Thyros Commonwealth, whose represented sector is logistics. No high-confidence operational reporting, victimology, tooling, campaign history, or verified tactics and techniques beyond its inclusion as a synthetic exercise actor are available.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
1 sources tracked across advisories and community write-ups. News coverage will land here when it surfaces.
No news coverage yet. Advisories and community discussion only.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.